CVE-2017-15946: Selfget Tag Meta

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

In the com_tag component 1.7.6 for Joomla!, a SQL injection vulnerability is located in the `tag` parameter to index.php. The request method to execute is GET.

Affected products

  • Selfget Tag Meta: version 1.7.6 only

Published 2017-10-28. Last modified 2026-06-17.